๐ [SA-CORE-2021-002] Extended XSS attribute sanitize filter to prevent cross-site scripting
๐ก Newskategorie: Sicherheitslรผcken
๐ Quelle: portal.patchman.co
Drupal core's sanitize API failed to properly filter cross-site scripting under certain circumstances.
This vulnerability affects the following application versions:
- Drupal 7.0
- Drupal 7.1
- Drupal 7.2
- Drupal 7.3
- Drupal 7.4
- Drupal 7.5
- Drupal 7.6
- Drupal 7.7
- Drupal 7.8
- Drupal 7.9
- Drupal 7.10
- Drupal 7.11
- Drupal 7.12
- Drupal 7.13
- Drupal 7.14
- Drupal 7.15
- Drupal 7.16
- Drupal 7.17
- Drupal 7.18
- Drupal 7.19
- Drupal 7.20
- Drupal 7.21
- Drupal 7.22
- Drupal 7.23
- Drupal 7.24
- Drupal 7.25
- Drupal 7.26
- Drupal 7.27
- Drupal 7.28
- Drupal 7.29
- Drupal 7.30
- Drupal 7.31
- Drupal 7.32
- Drupal 7.33
- Drupal 7.34
- Drupal 7.35
- Drupal 7.36
- Drupal 7.37
- Drupal 7.38
- Drupal 7.39
- Drupal 7.40
- Drupal 7.41
- Drupal 7.42
- Drupal 7.43
- Drupal 7.44
- Drupal 7.50
- Drupal 7.51
- Drupal 7.52
- Drupal 7.53
- Drupal 7.54
- Drupal 7.55
- Drupal 7.56
- Drupal 7.57
- Drupal 7.58
- Drupal 7.59
- Drupal 7.60
- Drupal 7.61
- Drupal 7.62
- Drupal 7.63
- Drupal 7.64
- Drupal 7.65
- Drupal 7.66
- Drupal 7.67
- Drupal 7.68
- Drupal 7.69
- Drupal 7.70
- Drupal 7.71
- Drupal 7.72
- Drupal 7.73
- Drupal 7.74
- Drupal 7.75
- Drupal 7.76
- Drupal 7.77
- Drupal 7.78
- Drupal 7.79
- Drupal 8.0.0
- Drupal 8.0.1
- Drupal 8.0.2
- Drupal 8.0.3
- Drupal 8.0.4
- Drupal 8.0.5
- Drupal 8.0.6
- Drupal 8.1.0
- Drupal 8.1.1
- Drupal 8.1.2
- Drupal 8.1.3
- Drupal 8.1.4
- Drupal 8.1.5
- Drupal 8.1.6
- Drupal 8.1.7
- Drupal 8.1.8
- Drupal 8.1.9
- Drupal 8.1.10
- Drupal 8.2.0
- Drupal 8.2.1
- Drupal 8.2.2
- Drupal 8.2.3
- Drupal 8.2.4
- Drupal 8.2.5
- Drupal 8.2.6
- Drupal 8.2.7
- Drupal 8.2.8
- Drupal 8.3.0
- Drupal 8.3.1
- Drupal 8.3.2
- Drupal 8.3.3
- Drupal 8.3.4
- Drupal 8.3.5
- Drupal 8.3.6
- Drupal 8.3.7
- Drupal 8.3.8
- Drupal 8.3.9
- Drupal 8.4.0
- Drupal 8.4.1
- Drupal 8.4.2
- Drupal 8.4.3
- Drupal 8.4.4
- Drupal 8.4.5
- Drupal 8.4.6
- Drupal 8.4.7
- Drupal 8.4.8
- Drupal 8.5.0
- Drupal 8.5.1
- Drupal 8.5.2
- Drupal 8.5.3
- Drupal 8.5.4
- Drupal 8.5.5
- Drupal 8.5.6
- Drupal 8.5.7
- Drupal 8.5.8
- Drupal 8.5.9
- Drupal 8.5.10
- Drupal 8.5.11
- Drupal 8.5.12
- Drupal 8.5.13
- Drupal 8.5.14
- Drupal 8.5.15
- Drupal 8.6.0
- Drupal 8.6.1
- Drupal 8.6.2
- Drupal 8.6.3
- Drupal 8.6.4
- Drupal 8.6.5
- Drupal 8.6.6
- Drupal 8.6.7
- Drupal 8.6.8
- Drupal 8.6.9
- Drupal 8.6.10
- Drupal 8.6.11
- Drupal 8.6.12
- Drupal 8.6.13
- Drupal 8.6.14
- Drupal 8.6.15
- Drupal 8.6.16
- Drupal 8.6.17
- Drupal 8.6.18
- Drupal 8.7.0
- Drupal 8.7.1
- Drupal 8.7.2
- Drupal 8.7.3
- Drupal 8.7.4
- Drupal 8.7.5
- Drupal 8.7.6
- Drupal 8.7.7
- Drupal 8.7.8
- Drupal 8.7.9
- Drupal 8.7.10
- Drupal 8.7.11
- Drupal 8.7.12
- Drupal 8.7.13
- Drupal 8.7.14
- Drupal 8.8.0
- Drupal 8.8.1
- Drupal 8.8.2
- Drupal 8.8.3
- Drupal 8.8.4
- Drupal 8.8.5
- Drupal 8.8.6
- Drupal 8.8.7
- Drupal 8.8.8
- Drupal 8.8.9
- Drupal 8.8.10
- Drupal 8.8.11
- Drupal 8.8.12
- Drupal 8.9.0
- Drupal 8.9.1
- Drupal 8.9.2
- Drupal 8.9.3
- Drupal 8.9.4
- Drupal 8.9.5
- Drupal 8.9.6
- Drupal 8.9.7
- Drupal 8.9.8
- Drupal 8.9.9
- Drupal 8.9.10
- Drupal 8.9.11
- Drupal 8.9.12
- Drupal 8.9.13
- Drupal 9.0.0
- Drupal 9.0.1
- Drupal 9.0.2
- Drupal 9.0.3
- Drupal 9.0.4
- Drupal 9.0.5
- Drupal 9.0.6
- Drupal 9.0.7
- Drupal 9.0.8
- Drupal 9.0.9
- Drupal 9.0.10
- Drupal 9.0.11
- Drupal 9.1.0
- Drupal 9.1.1
- Drupal 9.1.2
- Drupal 9.1.3
- Drupal 9.1.4
- Drupal 9.1.5
- Drupal 9.1.6